Known vulnerabilities in Fedora - page 507

Software: Fedora
Software CPE: cpe:2.3:o:fedoraproject:fedora:*:*:*:*:*:*:*:*
Total vulnerabilities: 13390
Public exploits: 703
Known exploited (KEV): 179
Highest CVSSv4 Score: 9.5

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Fedora Fedora is affected by 13390 known vulnerabilities: 103 critical, 3545 high, 5269 medium, 4472 low Critical High Medium Low

Vulnerabilities (13390)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU15972 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2018-8009
CWE-22 High
No
No
- 20.11.2018 SB2018112008
SB2019112016
SB2022072128
and 4 more
#VU13889 - Heap-based Buffer Overflow
CVE-2017-17833
CWE-122 High
No
No
- 16.07.2018 SB2018040907
SB2018071610
SB2018080104
and 10 more
#VU13797 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2018-0499
CWE-79 Low
No
No
- 10.07.2018 SB2018071104
SB2018073034
SB2018070311
and 1 more
#VU13592 - Exposure of sensitive information to an unauthorized actor
CVE-2018-3760
CWE-200 Low
No
No
- 05.07.2018 SB2018070506
SB2018062914
SB2018071001
and 3 more
#VU13530 - Exposure of sensitive information to an unauthorized actor
CVE-2018-12536
CWE-200 Low
No
No
- 02.07.2018 SB2018070205
SB2022032830
SB2022032831
and 8 more
#VU13529 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2017-7658
CWE-444 Low
No
No
- 02.07.2018 SB2018070205
SB2018082001
SB2020102711
and 17 more
#VU13528 - Exposure of sensitive information to an unauthorized actor
CVE-2017-7657
CWE-200 Low
No
No
- 02.07.2018 SB2018070205
SB2018082001
SB2022040632
and 18 more
#VU13527 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2017-7656
CWE-444 Low
No
No
- 30.06.2018 SB2018070205
SB2018082001
SB2022041923
and 17 more
#VU13531 - Session Fixation
CVE-2018-12538
CWE-384 Low
No
No
- 29.06.2018 SB2018070205
SB2024051717
SB2024110830
and 2 more
#VU13497 - Improper Access Control
CVE-2018-12895
CWE-284 Low
Available
No
- 27.06.2018 SB2018062705
SB2018071902
SB2018062713
and 4 more
#VU13505 - Out-of-bounds write
CVE-2018-12714
CWE-787 Low
No
No
- 26.06.2018 SB2018062814
SB2018070314
SB2018070315
#VU13398 - Exposure of sensitive information to an unauthorized actor
CVE-2018-12435
CWE-200 Low
No
No
- 18.06.2018 SB2018062007
SB2018071624
SB2018070223
and 1 more
#VU13126 - Exposure of sensitive information to an unauthorized actor
CVE-2018-11469
CWE-200 Low
No
No
- 31.05.2018 SB2018060109
SB2018102311
SB2019061124
and 1 more
#VU12602 - Command injection
CVE-2016-6811
CWE-77 Low
No
No
- 14.05.2018 SB2018051407
SB2018070222
SB2018070660
and 2 more
#VU37593 - Improper input validation
CVE-2017-15718
CWE-20 High
No
No
- 24.01.2018 SB2018012425
SB2024051037
SB2018070222
and 1 more
#VU37620 - Exposure of sensitive information to an unauthorized actor
CVE-2017-15713
CWE-200 Medium
No
No
- 19.01.2018 SB2017060509
SB2021120219
SB2021120336
and 7 more
#VU37982 - Cleartext Transmission of Sensitive Information
CVE-2017-3166
CWE-319 Low
No
No
- 13.11.2017 SB2017060509
SB2023090737
SB2018070222
and 1 more
#VU38638 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2017-9258
CWE-835 Medium
Available
No
- 27.07.2017 SB2017072714
SB2018070513
SB2018070514
#VU38639 - Resource exhaustion
CVE-2017-9259
CWE-400 Medium
Available
No
- 27.07.2017 SB2017072714
SB2018070513
SB2018070514
#VU38640 - Out-of-bounds read
CVE-2017-9260
CWE-125 Medium
Available
No
- 27.07.2017 SB2017072714
SB2018070513
SB2018070514


Showing elements 10121 - 10140 out of 13390